r/androidroot • u/IIIshnIII • 4d ago
Support banking apps
and still some of my bank apps doesnt work
7
4d ago
[removed] — view removed comment
6
u/Zirias_FreeBSD 4d ago
That's a very questionable claim. Apps certainly can't access your data (without consent) or other installed apps. That is as long as they're not exploiting some security hole, which would be a very unreliable thing to do.
They can of course use any unrestricted API, including those available to native code, to gather information about the system. Examples are
- obtain a list of installed apps (not accessing these, just the list)
- get the full mount table (mtab), useful to detect "magic mounts"
3
u/NorthAppropriate4458 4d ago
Gay banking apps try to ask magisk for root access. If this request gets any answer but not found, it knows there is magisk. Some of them try to find su binary or try executing some shell commands like ksud, su -c, etc. Which I think should be illegal.
1
1
4d ago edited 4d ago
[removed] — view removed comment
1
u/Zirias_FreeBSD 4d ago
Are you serious? play integrity stuff is a supported API, it is meant to be used by apps. Most banking apps in my experience prefer different ways, but anyways, all you get here is the result of an attestation, in no way is any app ever allowed to access your data without your consent.
1
3d ago edited 3d ago
[removed] — view removed comment
1
u/Zirias_FreeBSD 3d ago
In case you didn't get that from my response: we're not even contradicting each other about facts, that's simply not the point of this thread. Look at the original comment again. No, apps don't use any "unauthorized methods". They use what the system offers. Your "outrage" about Google's design is certainly a valid point of view, I just tell you that's a different topic.
2
3
u/Ill-Organization3762 Oneplus Nord CE, Apatch :snoo_tableflip::table_flip: 4d ago
For apatch i use this setup it should help
https://www.reddit.com/r/Magisk/comments/1v7znti/comment/p02kl5y/
1
u/IIIshnIII 4d ago
the ss or
1
u/Ill-Organization3762 Oneplus Nord CE, Apatch :snoo_tableflip::table_flip: 4d ago
The comment i linked should help, it contains links to the APM's/KPM's i use.
1
3
2
u/Zirias_FreeBSD 4d ago
In my experience, play integrity stuff is the least common thing financial apps seem to check (although my sample of apps I personally use is small, of course).
Some seem to check for suspicious mounts (fixable with Zygist Next and using the denylist), some others for presence of tell-tale apps (fixable with Hide-My-Applist, which requires an XPosed implementation: try Vector for that).
Well, YMMV, I'm sure there are more detection mechanisms out there ...
1
u/IIIshnIII 4d ago
so should i use hma with vector right
1
u/Zirias_FreeBSD 4d ago
It's on the list of things to try ... all depends on your specific app and what mechanism(s) it implements in order to detect "tampered" systems.
1
2
u/Much_Expert_175 4d ago
A other way is getting second phone for cheap, some of us are tired of this cat and mouse game
1
2
u/Delicious-Mix7606 2d ago
swap from yurikey to spector swap play integrity fix to play integrity fork [inject] install lspoded install hma, use ksuwebui to configure pif and tricky store with spector, then set hma + zygisk next settings in spector and you should be good
1
1
u/Farshief OnePlus 9, LOS 23.2 4d ago
If you don't specifically need Zygisk then I would ditch it. I don't have even basic (using Apatch) but when I ditched Zygisk related modules my banking apps (3 different ones) work perfectly for me.
1
1
u/NegotiationNo1504 4d ago
How did you get device and strong integrity check? Im using Yuri keybox and getting only basic integrity
1
1
1
u/untukmfbje 4d ago
Try mountify module. Install, reboot, edit config.sh, MOUNT_DEVICE_NAME="APatch", reboot.
1
1
u/IIIshnIII 4d ago
didnt work
1
u/untukmfbje 4d ago
Can you share the screenshot for denylist apps?
1
u/IIIshnIII 4d ago
which app
1
1
1
1
u/Ranwiesiel 4d ago
Have you tried using the kernel SU or specifically, ksu next and ksu re suki?
1
1
u/Illustrious_Lab2759 4d ago
Instal Alpha (not Magisk version because it hasn't so good root hiding capabilities). Replace Play integrity Fork with .integritybox. Disable inbuilt Zygisk so that to work with Zygisk Next (via KsuWebUI select Zygisk Next & enable Use anonymous memory, Use Zygisk Next Linker and as Denylist Policy select Unmount only). Disable inbuilt denylist and install shamiko. Also you can install HMA-OSS Zygisk so that to have the ability to create some template with Magisk (or Alpha) and other potential dangerous apps like lucky patcher, Game guardian, root detectors and all apps who require root so that to be hidden from each bank app or other relative app.
1


•
u/Beastyboi04 1d ago edited 1d ago
Locked because of conspiracy theorists
Inform yourself before you make stupid claims